NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3531 | CVE-2008-3663 | Squirrelmail 1.4.15 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie. | 2 | 5 | Medium | 2017-01-03 | 2010-08-21 | View | |
3787 | CVE-2008-3925 | Cross-site request forgery (CSRF) vulnerability in admin.php in Content Management Made Easy (CMME) 1.12 allows remote attackers to trigger the logout of an administrative user via a logout action. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
69323 | CVE-2005-3685 | Cross-site scripting (XSS) vulnerability in shopadmin.asp in VP-ASP Shopping Cart 5.50 allows remote attackers to inject arbitrary web script or HTML via the UserName parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
4043 | CVE-2008-4187 | Directory traversal vulnerability in index.php in ProActive CMS allows remote attackers to read arbitrary files via a .. (dot dot) in the template parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
4299 | CVE-2008-4476 | sympa.pl in sympa 5.3.4 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/sympa_aliases.$$ temporary file. NOTE: wwsympa.fcgi was also reported, but the issue occurred in a dead function, so it is not a vulnerability. | 2 | 6.9 | Medium | 2017-01-03 | 2009-09-08 | View |
Page 15790 of 17672, showing 5 records out of 88360 total, starting on record 78946, ending on 78950